What MITRE CAPEC-220: Client-Server Protocol Manipulation (Standard Attack Pattern - Medium Severity) requires
MITRE CAPEC-220 (Client-Server Protocol Manipulation) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary takes advantage of weaknesses in the protocol by which a client and server are communicating to perform unexpected actions. Communication protocols are necessary to transfer messages between client and server applications. Moreover, different protocols may be used for different types of interactions. Likelihood of attack: Unknown. Typical severity: Medium. Parent pattern for CAPEC-105 HTTP Request Splitting; CAPEC-273 HTTP Response Smuggling; CAPEC-274 HTTP Verb Tampering; and others. Maps to weaknesses CWE-757.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/220.html
SHA-256 integrity: 2c3dd8bdab70a5d6372453cf76a9ea5784a362a1932916fce3833100d0466528
Primary Citations — 7 traced to source
- MITRE CAPEC-220: Client-Server Protocol Manipulation (https://capec.mitre.org/data/definitions/220.html)
- CWE-757: underlying weakness (http://cwe.mitre.org/data/definitions/757.html)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/mitre-capec-capec-220-client-server-protocol-manipulation.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/mitre-capec-capec-220-client-server-protocol-manipulation.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/mitre-capec-capec-220-client-server-protocol-manipulation
- Back to registry: Browse all 10,085 compliance nodes